Hey Guys,
So, I have created a site-to-site VPN between a Sophos XG and a 2nd network which has an NBN modem. Link is up, stable and I can reach devices both ways. I really only want site A (the XG side) to be able to reach devices on site B and only one device (which has a static IP) on site B to be able to access site A. I'm using the "automatic VPN rule" created when I configured the IPSEC VPN.
If I want to block all devices on site B except for one device with a static IP from accessing devices on site A, could I just remove the site A LAN subnet from the "destinations & services" section in the rule on the XG and add just that single IP to the rule, or will that cause issues?
Is there a better way I should be doing this?
Kind regards
Aaron
This thread was automatically locked due to age.